5
CVSSv2

CVE-2001-0894

Published: 11/11/2001 Updated: 10/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Vulnerability in Postfix SMTP server prior to 20010228-pl07, when configured to email the postmaster when SMTP errors cause the session to terminate, allows remote malicious users to cause a denial of service (memory exhaustion) by generating a large number of SMTP errors, which forces the SMTP session log to grow too large.

Vulnerable Product Search on Vulmon Subscribe to Product

wietse venema postfix 2000-02-28

wietse venema postfix 1999-09-06

wietse venema postfix 1999-12-31

Vendor Advisories

Wietse Venema reported he found a denial of service vulnerability in postfix The SMTP session log that postfix keeps for debugging purposes could grow to an unreasonable size This has been fixed in version 0019991231pl11-2 ...